US9554270B2

Enhanced security for direct link communications

Summary by NHIP

Secure Direct Link Key Agreement

The method generates a common nonce from exchanged nonces to derive group identification information for an authentication server. A first WTRU receives a uniquely encrypted master key and derives GKEK and GKCK to decrypt and sign it before generating a GDLTK.

Claim Score by NHIP

Read claim 11, the broadest

Abstract

A method and apparatus for secure direct link communication between multiple wireless transmit/receive units (WTRUs) are disclosed. The WTRUs may exchange nonces that are used for generating a common nonce. Group identification information may be generated from at least the common nonce and is forwarded to an authentication server. The authentication server may generate a master key from the group identification information to match WTRUs as part of a key agreement group. The common nonce may be a session key and be refreshed during communication with the second WTRU. A group key encryption key (GKEK) and a group key confirmation key (GKCK) may also be generated based on the common nonce and used to encrypt and sign the master key so that base stations do not have access to the master key. A first WTRU may generate a group direct link temporal key (GDLTK) for communicating with the second WTRU.

US9554270B2, drawing sheet 1
Sheet 1 of 10

Term

Projected expiry 16 December 2029.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Projected expiry

20 claims: 2 independent, 18 dependent

  1. 1
    A method, implemented at a first wireless transmit/receive unit (WTRU), for secure direct link communication, the method comprising:generating, by the first WTRU, a first nonce;exchanging, by the first WTRU, the first nonce and a second nonce associated with a second WTRU;subsequent to exchanging the first nonce and the second nonce, generating, by the first WTRU, a common nonce that is common to the first WTRU and the second WTRU, wherein the common nonce is derived from the exchanged first and second nonces;transmitting, by the first WTRU, group identification information including the common nonce to an authentication server;andreceiving, by the first WTRU, a master key from the authentication server, wherein the master key is securely encrypted uniquely for the first WTRU.
  2. 11
    Broadest claimClaim Score 66, broad(NHIP)A first wireless transmit/receive unit (WTRU), comprising:a processor configured to generate a first nonce;a transceiver operatively coupled to the processor configured to exchange the first nonce and a second nonce, associated with a second WTRU, with the second WTRU;the processor further configured to generate, subsequent to exchanging the first nonce and the second nonce, a common nonce that is common to the first WTRU and the second WTRU, wherein the common nonce is derived from the exchanged first and second nonces;the transceiver and processor further configured to transmit group identification information including at least the common nonce to an authentication server;andthe transceiver and processor further configured to receive a master key from the authentication server, wherein the master key is securely encrypted uniquely for the first WTRU.